Mimikatz

Operate mimikatz — the definitive Windows credential extraction and Active Directory attack tool. Use when extracting credentials from Windows memory or the SAM database, performing DCSync attacks, forging Kerberos tickets (Golden/Silver), conducting Pass-the-Hash or Pass-the-Ticket attacks, or any AD post-exploitation requiring credential access. Covers all major modules (sekurlsa, lsadump, kerberos, token, crypto, dpapi, vault), in-memory execution via Invoke-Mimikatz, Cobalt Strike integration, detection evasion techniques, and complete AD attack chains.

jperezduerto ffcd316 17.7 KB Updated

File contents

jperezduerto/redhound-arsenal/tree/main/mimikatz commit ffcd3161c8

Frequently asked questions

npx skillmds@latest add jperezduerto/mimikatz